PT-2026-102816 · Project Jupyter · Jupyterlab+2

·

CVE-2026-102831

·

Published

2026-09-29

·

Updated

2026-10-01

CVSS v3.1

8.1

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions JupyterLab versions 4.5.0 through 4.5.10 JupyterLab versions 4.6.0 through 4.6.3 Notebook versions 7.5.0 through 7.6.2 JupyterLite Core versions 0.7.0 through 0.8.3
Description The system clipboard cell-paste path accepts attacker-controlled cell JSON without clearing the metadata.trusted attribute. When the useSystemClipboardForCells setting is active and pasteCodeCellsWithoutOutput is disabled, a pasted code cell can mark HTML output as trusted. This allows the bypass of output sanitization and the execution of scripts within the authenticated JupyterLab origin without requiring the cell to be executed. Markdown and raw cells are not affected as their output is sanitized.
Recommendations Update JupyterLab to version 4.5.11 or 4.6.4. Update Notebook to version 7.6.3. Update JupyterLite Core to version 0.8.4.

Exploit

Fix

XSS

Insufficient Verification of Data Authenticity

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-102831
GHSA-6966-VJJ6-99XV
OPENSUSE-SU-2026:11945-1
PYSEC-2026-4057
PYSEC-2026-4058
PYSEC-2026-4060
PYSEC-2026-4112

Affected Products

Jupyterlab
Jupyterlite-Core
Gnotebook